Vulnerability identifier: #VU357
Vulnerability risk: Low
CVSSv3.1:
CVE-ID:
CWE-ID:
CWE-300
Exploitation vector: Network
Exploit availability: Yes
Vulnerable software:
Linux kernel
Operating systems & Components /
Operating system
Vendor: Linux Foundation
Description
The vulnerability allows a remote attacker to write arbitrary files and cause DoS condition on the target system.
The weakness exists due to an error in net/ipv4/tcp_input.c while determining the rate of challenge ACK segments. A remote attacker can perform man-in-the-middle attack and hijack TCP sessions via a blind in-window attack.
Mitigation
Update to version 4.7.
Vulnerable software versions
Linux kernel: 4.6
CPE
External links
http://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git/commit/?id=75ff39ccc1bd5d3c455b68...
Can this vulnerability be exploited remotely?
Is there known malware, which exploits this vulnerability?